Vulnerability Manager Plus
Free Trial
  • Overview
  • Features
  • Demo
  • Documents
  • Get Quote
  • Support
Home
 

mupdf security update(DSA-3797-1) mupdf_1.5-1+deb8u2_kfreebsd-amd64.deb

Risk Information

Base Score
7.5
MODERATE
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Base Score
5.0
MODERATE
Vector
I:N/AV:N/Au:N/AC:L/A:P/C:N
EPSS Score
Exploitation Probability
17.57%

CVE Information

Source CVE
CVE-2017-5991

Associated CVE
CVE-2017-5991
CVE-2016-8674
CVE-2017-5896

Patch Details

No records found

References

http://www.debian.org/security/2017/dsa-3797
http://www.openwall.com/lists/oss-security/2016/10/16/8
http://www.openwall.com/lists/oss-security/2017/02/06/3
http://www.openwall.com/lists/oss-security/2017/02/07/1
http://www.securityfocus.com/bid/93127
http://www.securityfocus.com/bid/96139
http://www.securityfocus.com/bid/96213
https://blogs.gentoo.org/ago/2016/09/22/mupdf-use-after-free-in-pdf_to_num-pdf-object-c/
https://bugs.ghostscript.com/show_bug.cgi?id=697015
https://bugs.ghostscript.com/show_bug.cgi?id=697019
https://bugs.ghostscript.com/show_bug.cgi?id=697500
https://bugs.ghostscript.com/show_bug.cgi?id=697515
https://bugzilla.redhat.com/show_bug.cgi?id=1385685
https://security.gentoo.org/glsa/201702-12
https://security.gentoo.org/glsa/201706-08
https://www.exploit-db.com/exploits/42138/

Details

CWE ID
CWE-476
CWE Type
Memory corruption
Vulnerability ID
37754
Published
2017-02-15
Updated
2026-02-27

Vulnerability Intelligence

Evaluate vulnerabilities across managed endpoints with enriched threat intelligence and risk context such as:

Risk Score
Emerging Risk Catalog
CERT Advisories
Risk Indicators